Restoring DB to alternate LDAP suffix

Greg Hudson ghudson at mit.edu
Thu Jan 30 00:33:29 EST 2025


On 1/29/25 21:57, Jake Scott wrote:
> One thing — I did try restoring the dump to a file based database and 
> then dump/restoring again to LDAP and the same issue happened so I 
> assume that the LDAP data ends up in the file DB as well - is that also 
> what you expect?

That's also expected.  The LDAP KDB module synthesizes and interprets 
the type-255 tl-data; other modules don't know anything about it, so 
they just store it and replay it.


More information about the Kerberos mailing list